RubyGem developers: sign your gem with PGP

https://news.ycombinator.com/item?id=5359000
by FooBarWidget • 13 years ago
6 1 13 years ago

Remember the recent Rubygems.org vulnerability? We don't want all that to happen again do we? But the responsibility lies partly on us, the gem developers.

The folks at Phusion have already signed most of our repositories and gems with our PGP key, which in turned is signed by the rubygems-openpgp CA. Will you be the next to sign? Go to http://www.rubygems-openpgp-ca.org/

Related Stories

Loading related stories...

Source preview

news.ycombinator.com